Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, and 3.5.1 does not properly implement the ASLR protection mechanism, which allows remote attackers to obtain sensitive address information via a crafted web site, aka .NET ASLR Vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
.net_framework | Microsoft | 1.1-sp1 (including) | 1.1-sp1 (including) |
.net_framework | Microsoft | 2.0-sp2 (including) | 2.0-sp2 (including) |
.net_framework | Microsoft | 3.0-sp2 (including) | 3.0-sp2 (including) |
.net_framework | Microsoft | 3.5 (including) | 3.5 (including) |
.net_framework | Microsoft | 3.5.1 (including) | 3.5.1 (including) |